๐ฆ๐บ
weblite
2023-12-21 22:19:26
(2 years ago)
WP_LOGIN_FAIL
Brute-Force
Web App Attack
๐ฉ๐ช
eminovic.ba
2023-12-21 17:34:31
(2 years ago)
Wordpress attack
...
Hacking
Brute-Force
Web App Attack
Anonymous
2023-12-20 17:11:09
(2 years ago)
hoingk.de 2a01:4f9:3a:109d::2 [20/Dec/2023:18:11:07 +0100] "POST /wp-login.php HTTP/1.1" 200 8954 "- ...
show more
hoingk.de 2a01:4f9:3a:109d::2 [20/Dec/2023:18:11:07 +0100] "POST /wp-login.php HTTP/1.1" 200 8954 "-" "Mozilla/5.0 (X11; Ubuntu; Linux x86_64; rv:62.0) Gecko/20100101 Firefox/62.0"
hoingk.de 2a01:4f9:3a:109d::2 [20/Dec/2023:18:11:08 +0100] "POST /xmlrpc.php HTTP/1.1" 200 5449 "-" "Mozilla/5.0 (X11; Ubuntu; Linux x86_64; rv:62.0) Gecko/20100101 Firefox/62.0"
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2023-12-18 04:35:50
(2 years ago)
(mod_security) mod_security (id:225170) triggered by 2a01:4f9:3a:109d::2 (Unknown): 1 in the last 30 ...
show more
(mod_security) mod_security (id:225170) triggered by 2a01:4f9:3a:109d::2 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Dec 17 23:35:46.255171 2023] [security2:error] [pid 9071] [client 2a01:4f9:3a:109d::2:33312] [client 2a01:4f9:3a:109d::2] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||mostafa-mohamed.services-guide.net|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "mostafa-mohamed.services-guide.net"] [uri "/wp-json/wp/v2/users/"] [unique_id "ZX_MIoZ2sRBoVhSs7AJp6wAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2023-12-18 03:31:39
(2 years ago)
(mod_security) mod_security (id:225170) triggered by 2a01:4f9:3a:109d::2 (Unknown): 1 in the last 30 ...
show more
(mod_security) mod_security (id:225170) triggered by 2a01:4f9:3a:109d::2 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Dec 17 22:31:32.564610 2023] [security2:error] [pid 11054] [client 2a01:4f9:3a:109d::2:38390] [client 2a01:4f9:3a:109d::2] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||silalaw.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "silalaw.com"] [uri "/wp-json/wp/v2/users/"] [unique_id "ZX-9FBv4t3sLUiWCf_Xn9QAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
myagent.site
2023-12-18 02:18:01
(2 years ago)
Blocked user enumeration attempt
Hacking
๐บ๐ธ
TPI-Abuse
2023-12-18 00:58:24
(2 years ago)
(mod_security) mod_security (id:225170) triggered by 2a01:4f9:3a:109d::2 (Unknown): 1 in the last 30 ...
show more
(mod_security) mod_security (id:225170) triggered by 2a01:4f9:3a:109d::2 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Dec 17 19:58:18.578511 2023] [security2:error] [pid 19009] [client 2a01:4f9:3a:109d::2:49880] [client 2a01:4f9:3a:109d::2] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.trekandpaddle.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.trekandpaddle.com"] [uri "/wp-json/wp/v2/users/"] [unique_id "ZX-ZKkODqhan-FDDMikAJgAAAAg"], referer: http://trekandpaddleadventures.com///wp-json/wp/v2/users/
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
pm33
2023-12-17 22:54:29
(2 years ago)
Wordpress login attempts
Brute-Force
๐ฉ๐ช
ps-center
2023-12-17 22:18:04
(2 years ago)
DIS: Web Attack GET /wp-login.php
Web Spam
Hacking
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2023-12-17 20:48:41
(2 years ago)
(mod_security) mod_security (id:225170) triggered by 2a01:4f9:3a:109d::2 (Unknown): 1 in the last 30 ...
show more
(mod_security) mod_security (id:225170) triggered by 2a01:4f9:3a:109d::2 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Dec 17 15:48:35.529207 2023] [security2:error] [pid 3467] [client 2a01:4f9:3a:109d::2:42280] [client 2a01:4f9:3a:109d::2] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||gazelleplanner.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "gazelleplanner.com"] [uri "/wp-json/wp/v2/users/"] [unique_id "ZX9eo1k6QHRTTwBCrGMINAAAABM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
iNetWorker
2023-12-17 19:32:05
(2 years ago)
trolling for resource vulnerabilities
Web App Attack
๐บ๐ธ
TPI-Abuse
2023-12-17 19:24:50
(2 years ago)
(mod_security) mod_security (id:225170) triggered by 2a01:4f9:3a:109d::2 (Unknown): 1 in the last 30 ...
show more
(mod_security) mod_security (id:225170) triggered by 2a01:4f9:3a:109d::2 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Dec 17 14:24:42.922208 2023] [security2:error] [pid 13751] [client 2a01:4f9:3a:109d::2:48606] [client 2a01:4f9:3a:109d::2] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||mariposaoriginals.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "mariposaoriginals.com"] [uri "/wp-json/wp/v2/users/"] [unique_id "ZX9K-mTqtUXdKnWNFp8A-AAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2023-12-17 17:08:39
(2 years ago)
(mod_security) mod_security (id:225170) triggered by 2a01:4f9:3a:109d::2 (Unknown): 1 in the last 30 ...
show more
(mod_security) mod_security (id:225170) triggered by 2a01:4f9:3a:109d::2 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Dec 17 12:08:36.222765 2023] [security2:error] [pid 13566] [client 2a01:4f9:3a:109d::2:34112] [client 2a01:4f9:3a:109d::2] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||thebadasstrader.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "thebadasstrader.com"] [uri "/wp-json/wp/v2/users/"] [unique_id "ZX8rFDlCA_hi6zyJ-anL0gAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2023-12-17 15:30:29
(2 years ago)
(mod_security) mod_security (id:225170) triggered by 2a01:4f9:3a:109d::2 (Unknown): 1 in the last 30 ...
show more
(mod_security) mod_security (id:225170) triggered by 2a01:4f9:3a:109d::2 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Dec 17 10:30:22.516827 2023] [security2:error] [pid 8434] [client 2a01:4f9:3a:109d::2:58264] [client 2a01:4f9:3a:109d::2] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||mavikalem.org|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "mavikalem.org"] [uri "/wp-json/wp/v2/users/"] [unique_id "ZX8UDs2T5-HCiADr4phxawAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2023-12-17 14:41:23
(2 years ago)
(mod_security) mod_security (id:225170) triggered by 2a01:4f9:3a:109d::2 (Unknown): 1 in the last 30 ...
show more
(mod_security) mod_security (id:225170) triggered by 2a01:4f9:3a:109d::2 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Dec 17 09:41:18.107577 2023] [security2:error] [pid 1509] [client 2a01:4f9:3a:109d::2:54598] [client 2a01:4f9:3a:109d::2] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||ucommsi.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "ucommsi.com"] [uri "/wp-json/wp/v2/users/"] [unique_id "ZX8Iji91dkinpHe_yMR9GQAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack